CVE Search

Cari CVE dari dbcve.org — keyword, vendor, severity, KEV, dan rentang waktu.

Advanced Filter
Reset
Active filters: Vendor: gitlab
1,044 result(s) · page 41 of 53
CVE-2019-12429
MEDIUM

An issue was discovered in GitLab Community and Enterprise Edition 11.9 through 11.11. Unprivileged users were able to access labels, status and merge request counts of confidentia...

CVSS 6.5 Gitlab gitlab 2020-03-10
CVE-2019-12433
MEDIUM

An issue was discovered in GitLab Community and Enterprise Edition 11.7 through 11.11. It has Improper Input Validation. Restricted visibility settings allow creating internal proj...

CVSS 5.3 Gitlab gitlab 2020-03-10
CVE-2020-8113
CRITICAL

GitLab 10.7 and later through 12.7.2 has Incorrect Access Control.

CVSS 9.8 Gitlab gitlab 2020-03-06
CVE-2020-8795
HIGH

In GitLab Enterprise Edition (EE) 12.5.0 through 12.7.5, sharing a group with a group could grant project access to unauthorized users.

CVSS 7.5 Gitlab gitlab 2020-02-17
CVE-2020-6833
HIGH

An issue was discovered in GitLab EE 11.3 and later. A GitLab Workhorse bypass could lead to package and file disclosure via request smuggling.

CVSS 7.5 Gitlab gitlab 2020-02-05
CVE-2020-7972
HIGH

GitLab EE 12.2 has Insecure Permissions (issue 2 of 2).

CVSS 7.5 Gitlab gitlab 2020-02-05
CVE-2020-7978
HIGH

GitLab EE 12.6 and later through 12.7.2 allows Denial of Service.

CVSS 7.5 Gitlab gitlab 2020-02-05
CVE-2020-7971
MEDIUM

GitLab EE 11.0 and later through 12.7.2 allows XSS.

CVSS 6.1 Gitlab gitlab 2020-02-05
CVE-2020-7973
MEDIUM

GitLab through 12.7.2 allows XSS.

CVSS 6.1 Gitlab gitlab 2020-02-05
CVE-2020-7974
MEDIUM

GitLab EE 10.1 through 12.7.2 allows Information Disclosure.

CVSS 5.3 Gitlab gitlab 2020-02-05
CVE-2020-7976
MEDIUM

GitLab EE 12.4 and later through 12.7.2 has Incorrect Access Control.

CVSS 5.3 Gitlab gitlab 2020-02-05
CVE-2020-7977
MEDIUM

GitLab EE 8.8 and later through 12.7.2 has Insecure Permissions.

CVSS 5.3 Gitlab gitlab 2020-02-05
CVE-2020-7966
HIGH

GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal.

CVSS 7.5 Gitlab gitlab 2020-02-05
CVE-2020-7968
HIGH

GitLab EE 8.0 through 12.7.2 has Incorrect Access Control.

CVSS 7.5 Gitlab gitlab 2020-02-05
CVE-2020-7969
HIGH

GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure.

CVSS 7.5 Gitlab gitlab 2020-02-05
CVE-2020-8114
CRITICAL

GitLab EE 8.9 and later through 12.7.2 has Insecure Permission

CVSS 9.8 Gitlab gitlab 2020-02-05
CVE-2020-7979
MEDIUM

GitLab EE 8.9 and later through 12.7.2 has Insecure Permission

CVSS 5.3 Gitlab gitlab 2020-02-05
CVE-2013-4583
HIGH

The parse_cmd function in lib/gitlab_shell.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows r...

CVSS 8.8 Gitlab gitlab 2020-01-28
CVE-2013-4582
MEDIUM

The (1) create_branch, (2) create_tag, (3) import_project, and (4) fork_project functions in lib/gitlab_projects.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, Ente...

CVSS 6.5 Gitlab gitlab 2020-01-28
CVE-2019-5468
HIGH

An privilege escalation issue was discovered in Gitlab versions < 12.1.2, < 12.0.4, and < 11.11.6 when Mattermost slash commands are used with a blocked account.

CVSS 8.8 Gitlab gitlab 2020-01-28
1 39 40 41 42 43 53
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.